Jump to content

Recommended Posts

Posted (edited)

Добрый день.

 

Имеется большая необходимость запустить в своей сети OpenVPN сервер на Keenetic Ultra II, для получения в дороге, со смартфона, белого IP своего роутера. Всё имеющиеся мануалы по встроенному в прошивку OVPN помогают поднять клиент, но не сервер. Служба поддержки Zyxel отписалась, что у них так же нет инструкции.

 

Прошу Вас помочь с поднятием OVPN.

 

Заранее благодарен.

Edited by Faizrakhmanov
Posted
OpenVPN0OpenSSL: error:0906D06C:lib(9):func(109):reason(108)
OpenVPN0Cannot load DH parameters from [[INLINE]]
OpenVPN0Exiting due to fatal error
ndmService: "OpenVPN": unexpectedly stopped.
OpenVPN0OpenSSL: error:0906D06C:lib(9):func(109):reason(108)
OpenVPN0Cannot load DH parameters from [[INLINE]]
OpenVPN0Exiting due to fatal error
ndmService: "OpenVPN": unexpectedly stopped.
Задаю такой конфиг сервера:
port 1194

proto udp

dev tun

<ca>
MIIEsDCCA5igAwIBAgIJAI7fBh9TXrAcMA0GCSqGSIb3DQEBCwUAMIGWMQswCQYD
VQQGEwJSVTELMAkGA1UECBMCVEExDjAMBgNVBAcTBUthemFuMQ0wCwYDVQQKEwRG
YXJtMQ8wDQYDVQQLEwZNeUZhcm0xEDAOBgNVBAMTB0Zhcm0gQ0ExEDAOBgNVBCkT
B0Vhc3lSU0ExJjAkBgkqhkiG9w0BCQEWF2EuZmFpenJha2htYW5vdkBtYWlsLnJ1
MB4XDTE3MTEyNTIwNTQ1M1oXDTI3MTEyMzIwNTQ1M1owgZYxCzAJBgNVBAYTAlJV
MQswCQYDVQQIEwJUQTEOMAwGA1UEBxMFS2F6YW4xDTALBgNVBAoTBEZhcm0xDzAN
BgNVBAsTBk15RmFybTEQMA4GA1UEAxMHRmFybSBDQTEQMA4GA1UEKRMHRWFzeVJT
QTEmMCQGCSqGSIb3DQEJARYXYS5mYWl6cmFraG1hbm92QG1haWwucnUwggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC3N0EY7kvxB2Mukowbkqb5kaNQ64tP
fwfvei/rf2R5pFcw4pO4NSOQ8Zxbd343pJay7sppnkxQ37+gIv3K5UmomwzNvY4i
HGH1cPobNlptoXYDLgmxqYlZ0r0NAS9uJrcXROtMuS6sWWG+IFPpwKN/ff8Noob/
UwAoH7/eiyNlYDzkNAIp4mel4gX+y5ww21K9ktavs2j8frftGHTP1iKfc6MJ/W+X
k2nZ2CyDwbHwKoopkl/073k4SigFml1X1y24BlUlaUdHnPbXdhHoBC+zAgMBAAGj
gf4wgfswHQYDVR0OBBYEFBXjxp8K0yLbWDMtFIN5W527osXwMIHLBgNVHSMEgcMw
gcCAFBXjxp8K0yLbWDMtFIN5W527osXwoYGcpIGZMIGWMQswCQYDVQQGEwJSVTEL
MAkGA1UECBMCVEExDjAMBgNVBAcTBUthemFuMQ0wCwYDVQQKEwRGYXJtMQ8wDQYD
VQQLEwZNeUZhcm0xEDAOBgNVBAMTB0Zhcm0gQ0ExEDAOBgNVBCkTB0Vhc3lSU0Ex
JjAkBgkqhkiG9w0BCQEWF2EuZmFpenJha2htYW5vdkBtYWlsLnJ1ggkAjt8GH1Ne
sBwwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEARSlgTxy2ysjFz3KA
+F0eD+HSrEYNlCeUGOO1rdZX3yksz3e/VvSpvqTD5SZLrQuxo06jXye/gtB8zdcT
oYS8bBTmHUtndEIxDVVKYyW2M6OZFvcrwuDsAnz2rS5EGEFgbusy1dqLjkdbi5uW
1Ig9IwpEafB54mOut0neki8DJPi+QB7avvhyZ0TdEBBIVu3jBo9ldeYj5WjLZ7dM
yPJPCjB2OEGcY4ybhITP8fpX5XtJzSu1i13ZsH5M8OcGZh2hdkqikUXSGudzunk3
reuODTIpfqzM73nmWwVFBKQByL5GhFes3uEQVt8nZNndFDEfwd7B8sMmE+7hXwy5
hH9qXw==
</ca>
 
<cert>
MIIFJDCCBAygAwIBAgIBATANBgkqhkiG9w0BAQsFADCBljELMAkGA1UEBhMCUlUx
CzAJBgNVBAgTAlRBMQ4wDAYDVQQHEwVLYXphbjENMAsGA1UEChMERmFybTEPMA0G
A1UECxMGTXlGYXJtMRAwDgYDVQQDEwdGYXJtIENBMRAwDgYDVQQpEwdFYXN5UlNB
MSYwELMAkGA1UE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</cert>     


<key>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+o4G7AoGBAI4j2Fh6TnhDmvlQB5WZ
dbL0FHl0/fdxufJdgwE2+9ohRDv/wQtrPeG+Zir0GvKJkpPce2F4GNHdge4xZ/nl
CP9GUXl8Jga7Q4EH8yH1hmQoSs74uARugUZFz1pZ11tcIemaFd7mr96s5ZRJ/Esg
7nPyd2YOZuEWK+RAb9KH2GUw
</key>

<dh>
MIIBCAKCAQEAtio54BwL0mIroay5GOMHjq0ZrFO7ELHrbRXvGmyh2jYCLbvksCqn
s1e8VT+
/gsRHIaWJvoSqQfy+vYD4Y
/eMK5QNbWBPwuSflNzzUwm7EXSEJIJdsDY6
FhJHuoKIlqsBZb0/+ITJ7FsH2ItY6w8QaeS3zM2X
+5exYAwIBAg==
</dh>

server 10.8.0.0 255.255.255.0

push "redirect-gateway def1 bypass-dhcp"

client-to-client

keepalive 10 120

cipher AES-256-CBC

comp-lzo

max-clients 1

user nobody

group nogroup

persist-key

persist-tun

verb 0

mute 3

 

Posted

@Faizrakhmanov

Зачем вы у ключей строчки по обрезали?

Вставляйте в конфиг содержимое файлов с ключами полностью.

Posted
12 часа назад, r13 сказал:

@Faizrakhmanov

Зачем вы у ключей строчки по обрезали?

Вставляйте в конфиг содержимое файлов с ключами полностью.

Не сильно в этом разбираюсь, подумал для безопасности не вставлять ключи =)

 

port 1194

proto udp

dev tun

<ca>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</ca>
 
<cert>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</cert>     


<key>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</key>

<dh>
MIIBCAKCAQEAtio54BwL0mIroay5GOMHjq0ZrFO7ELHrbRXvGmyh2jYCLbvksCqn
s1e8VT+BX16gIgyggD7YUkE1GEgbAu9cBe4a94bDfTpcmfbI3ni0MR6gtNVmUaVL
yu8Q0hh6ybIFrtwTiBPrV7iualyVrO33TAQbI3WG41/gsRHIaWJvoSqQfy+vYD4Y
Cood9p5IshYVybGwNQ7W3UTY4m6nk/eMK5QNbWBPwuSflNzzUwm7EXSEJIJdsDY6
FhJHuoKIlqsBZb0/vjncgeHBRROxU23st4IcELBA+ITJ7FsH2ItY6w8QaeS3zM2X
5T1sbgmuSTEHtE4DN1zHw48UyUo+5exYAwIBAg==
</dh>

server 10.8.0.0 255.255.255.0

push "redirect-gateway def1 bypass-dhcp"

client-to-client

keepalive 10 120

cipher AES-256-CBC

comp-lzo

max-clients 1

user nobody

group nogroup

persist-key

persist-tun

verb 0

mute 3

 

Posted

А почему я не вижу у inline-блоков заголовков и трейлеров навроде

-----BEGIN CERTIFICATE-----
-----END CERTIFICATE-----
-----BEGIN RSA PRIVATE KEY-----
-----END RSA PRIVATE KEY-----
-----BEGIN DH PARAMETERS-----
-----END DH PARAMETERS-----

?

А вообще, похоже на "битый" файл с данными DH:

error:0906D06C:lib(9):func(109):reason(108)
error:0906D06C:PEM routines:PEM_read_bio:no start line

Начните с расставления правильных заголовков.

Posted
В 25.11.2017 в 23:52, Faizrakhmanov сказал:

Имеется большая необходимость запустить в своей сети OpenVPN сервер на Keenetic Ultra II, для получения в дороге, со смартфона, белого IP своего роутера.

Не пробовали воспользоваться IPsec VirtualIP? Или попадали на подключения, где он не работает/падает?

В 27.11.2017 в 02:48, Faizrakhmanov сказал:

подумал для безопасности не вставлять ключи

Как удастся успешно запустить - просто сгенерируйте все ключи заново.

  • 5 years later...
Posted
В 27.11.2017 в 02:48, Faizrakhmanov сказал:

Не сильно в этом разбираюсь, подумал для безопасности не вставлять ключи 😃

 

port 1194

proto udp

dev tun

<ca>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</ca>
 
<cert>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</cert>     


<key>
MIIEvgIBADANBgkqhkiG9w0BAQEFAASCBKgwggSkAgEAAoIBAQDFX1Vb2AQkV6UB
oYa1dQAtt267t+PUnJ409o78XS6wh7BDLUQBrlUxYFqK/MpMtE+hAAy7Bcu3QP/F
kARnoFjBJN7ipnWWx1M6/tfyVVKRzNGAyzeNUjsihHvmEhi9tEOEvnZd9h0qXTmv
ca97giXgFScRw+ElAwHmmnC0dGpS9iF/Dg0oGUr7HfjNAz5fVHz9zNLPeq1iEzlg
EAimJbm/zLCkSKAo8sm0Myt22W/kXnXfEI6WUPo3njo6ud8m36cjV1qAhUH0PB/M
qHtEkbO2mDxjXZbOjfSSIRzwMZpEkuhsklL0k791p5OM3yT0iEKqJjsDHBbqz892
+cymX+dlAgMBAAECggEAdAjdBPbVUIxaTMAqkwlrBnV920x72+YLuLVvUHxz04Ki
JIw7HAXivfmYoXeGc1vaKJv/3//DSUQkWoCVplqFc196zaLxJKigjOGAEU8KEP9p
958BVMsQSvW6ZYMkGnsc6rCSpCDp+pr+K9/ZO/JC1B97bZ1MAtdmyazoL571Vzml
WDZRyo2PSXyIRK+cqX1tVbeOST1Ta+J1Qdh+x1C3eb0wENIhDb2yhlsdJboG1HCW
al2vfkQdMjqHTAbnJfIYO3dNujcbRUKS5nXHJLgNlNDrmfU3JiszkeY71yb6CDN4
9T65bYAXJ7Ei/Iyjpr4jjjdNuFKpVzfU598ksqOrrQKBgQDyvxpreIvXzdJUnXfZ
x/Y+2d56ILW5dqtMk6RDrxWktaFww/gb+pdkfWfOt3X+aTGXQSnIgFQeDe9dn9AN
96OPd+sUk4SKGwlKrkLyahJA97LUPK2spG0yZuDTEX5nUIXgJzatVhZyRWwtRn1P
Y8BjQSgCNhO7NCaXLOXoPTWppwKBgQDQJgfvyndpY7a/9SegMnCfRek0I+Dms9p3
Rygvg9wf8lubvatrIEkzjcjY7nZlWiS5fsI8yZZGXtOMXvd7vvGU4p7gDR20Rync
j2fh9tP5wMXsU/Fp+P9RuCi5CK4g0CXteDIs1H3DI+lWW28Wn9uw2B0xDKgH4D8w
RzvNEGMwEwKBgQCXlpuLDYZWx6NXT9auW179NNTn81FIdkDW20QzOD0N1Jbyco6X
+k9cY6vVvV+j9lEPoZPUL79X3V/jWY91iXXMfBiDivOzwtp0loocE/0+MPCt9Q6H
x06hsPkpFb2YCwLvTc2pRR9TUOMTCvfqAeL8mI3Bg7+iohiPQ2x3MPI39QKBgEBm
k+wQM7QK4v8vZcw97vSIl+fG9g3LNdvTy04wOQo1XTypiYECo0NtKehcl4syQcyW
uJhAMtug+UkkFORXpr1PBKMDy938aqpQQG78hIdwqow9SKNmI/DvzsG5Os7yN9nq
Z3PRZvvaf5Z1gcB5Q2rK4vVLGi4dps9UKt9+o4G7AoGBAI4j2Fh6TnhDmvlQB5WZ
dbL0FHl0/fdxufJdgwE2+9ohRDv/wQtrPeG+Zir0GvKJkpPce2F4GNHdge4xZ/nl
CP9GUXl8Jga7Q4EH8yH1hmQoSs74uARugUZFz1pZ11tcIemaFd7mr96s5ZRJ/Esg
7nPyd2YOZuEWK+RAb9KH2GUw
</key>

<dh>
MIIBCAKCAQEAtio54BwL0mIroay5GOMHjq0ZrFO7ELHrbRXvGmyh2jYCLbvksCqn
s1e8VT+BX16gIgyggD7YUkE1GEgbAu9cBe4a94bDfTpcmfbI3ni0MR6gtNVmUaVL
yu8Q0hh6ybIFrtwTiBPrV7iualyVrO33TAQbI3WG41/gsRHIaWJvoSqQfy+vYD4Y
Cood9p5IshYVybGwNQ7W3UTY4m6nk/eMK5QNbWBPwuSflNzzUwm7EXSEJIJdsDY6
FhJHuoKIlqsBZb0/vjncgeHBRROxU23st4IcELBA+ITJ7FsH2ItY6w8QaeS3zM2X
5T1sbgmuSTEHtE4DN1zHw48UyUo+5exYAwIBAg==
</dh>

server 10.8.0.0 255.255.255.0

push "redirect-gateway def1 bypass-dhcp"

client-to-client

keepalive 10 120

cipher AES-256-CBC

comp-lzo

max-clients 1

user nobody

group nogroup

persist-key

persist-tun

verb 0

mute 3

 

удалось ли вам запуститься? Поделитесь конфигом, пожалуйста, тоже хочу :(

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

This site uses cookies. By clicking "I accept" or continuing to browse the site, you authorize their use in accordance with the Privacy Policy.